Agy Delegate
sickn33/agentic-awesome-skills
Delegate coding tasks to the Google Antigravity CLI (agy) only when the user explicitly requests it, while the orchestrator retains review and landing responsibility.
A skill your agent uses when Codex or Claude Code should delegate repository exploration or implementation to Google Antigravity CLI (agy), then review, verify, repair, and deliver the result.
$ npx skills add aiskillstore/marketplace --skill agy-worker -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install aiskillstore/marketplace agy-worker --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/aiskillstore/marketplace.git skills-src && mkdir -p .claude/skills && cp -r skills-src/pending/cagdasyurekli/agy-worker .claude/skills/agy-worker && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "agy-worker" agent skill from https://github.com/aiskillstore/marketplace/tree/main/pending/cagdasyurekli/agy-worker into .claude/skills/agy-worker/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "agy-worker", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/aiskillstore/marketplace/tree/main/pending/cagdasyurekli/agy-workerType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add aiskillstore/marketplace --skill agy-worker -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install aiskillstore/marketplace agy-worker --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/aiskillstore/marketplace.git skills-src && mkdir -p .agents/skills && cp -r skills-src/pending/cagdasyurekli/agy-worker .agents/skills/agy-worker && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "agy-worker" agent skill from https://github.com/aiskillstore/marketplace/tree/main/pending/cagdasyurekli/agy-worker into .agents/skills/agy-worker/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "agy-worker", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add aiskillstore/marketplace --skill agy-worker -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install aiskillstore/marketplace agy-worker --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/aiskillstore/marketplace.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/pending/cagdasyurekli/agy-worker .cursor/skills/agy-worker && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "agy-worker" agent skill from https://github.com/aiskillstore/marketplace/tree/main/pending/cagdasyurekli/agy-worker into .cursor/skills/agy-worker/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "agy-worker", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/aiskillstore/marketplace.git --path pending/cagdasyurekli/agy-worker--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add aiskillstore/marketplace --skill agy-worker -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install aiskillstore/marketplace agy-worker --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/aiskillstore/marketplace.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/pending/cagdasyurekli/agy-worker .gemini/skills/agy-worker && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "agy-worker" agent skill from https://github.com/aiskillstore/marketplace/tree/main/pending/cagdasyurekli/agy-worker into .gemini/skills/agy-worker/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "agy-worker", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install aiskillstore/marketplace agy-workerInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add aiskillstore/marketplace --skill agy-worker -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/aiskillstore/marketplace.git skills-src && mkdir -p .github/skills && cp -r skills-src/pending/cagdasyurekli/agy-worker .github/skills/agy-worker && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "agy-worker" agent skill from https://github.com/aiskillstore/marketplace/tree/main/pending/cagdasyurekli/agy-worker into .github/skills/agy-worker/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "agy-worker", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add aiskillstore/marketplace --skill agy-worker -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install aiskillstore/marketplace agy-worker --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/aiskillstore/marketplace.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/pending/cagdasyurekli/agy-worker .opencode/skills/agy-worker && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "agy-worker" agent skill from https://github.com/aiskillstore/marketplace/tree/main/pending/cagdasyurekli/agy-worker into .opencode/skills/agy-worker/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "agy-worker", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
agy-workerA skill your agent uses when Codex or Claude Code should delegate repository exploration or implementation to Google Antigravity CLI (agy), then review, verify, repair, and deliver the result.
Agy Worker is an agent skill from aiskillstore/marketplace. Use when Codex or Claude Code should delegate repository exploration or implementation to Google Antigravity CLI (agy), then review, verify, repair, and deliver the result.
Its SKILL.md is about 2.7k tokens, which your agent loads only when the skill is triggered. The skill folder holds 44 other files, including scripts and reference files (for example `README.md`, `agents/openai.yaml` and `references/PROJECT_LIFECYCLE_AND_VERIFICATION.md`). Compatibility notes: OpenAI Codex CLI and Claude Code. Requires Bash, Python 3, git, and agy with provider network access.
The repository describes itself as: Security-audited skills for Claude, Codex & Claude Code. One-click install, quality verified. The licence is MIT.
Read from SKILL.md and the folder at commit 755bc35. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Ships 1 file in scripts/ (Shell, from the files we listed), which the agent can run.
Shell commands in SKILL.md call:
bashclaudeFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
OpenAI Codex CLI and Claude Code. Requires Bash, Python 3, git, and agy with provider network access.
From compatibility in the SKILL.md frontmatter.
Agy Worker loads about 2.7k tokens when it runs, and up to ~14k if it reads all its reference files. Until then it costs about 46 tokens; SKILL.md has 1,253 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.
The full file from aiskillstore/marketplace at commit 755bc35, republished under its MIT licence (© aiskillstore). 1,253 words, ~2,697 tokens.
.claude/skills/agy-worker/SKILL.md (or your agent's skills folder). This skill also uses 40 other files; get the full folder from GitHub.Delegate substantive exploration or implementation to agy, then inspect its diff
and run driver-owned checks. Unknown files, architecture or a first test command do
not prevent useful exploration; worker envelopes are not evidence.
SKILL_ROOT contains this file. In Claude Code it is ${CLAUDE_SKILL_DIR},
substituted in instructions rather than exported by Bash. Resolve the package:
PIPELINE="$(bash "$SKILL_ROOT/scripts/resolve-pipeline.sh")" || exit $?Use "$PIPELINE/doctor.sh" --repo /absolute/path/to/target for offline readiness;
ready proves neither authentication nor task success. See the Package README.
Obtain human approval for the task, exact provider-readable content, transmission and isolation modes, caller-selected model and budget. One upfront approval may cover predictable same-scope repairs and mechanical digest refresh. New scope, content exposure, destination, isolation, permissions or budget needs fresh authority. SHA values bind the documented controller inputs, not the entire human decision; refreshing a still-applicable binding is not another approval request. Goal and hand-authored JSON are not ordinary-use prerequisites.
Prefer --provider-scope FILE --approve-transmission-sha SHA256 for bounded jobs. It binds reviewed read entries, their content digest, and a write subset in a fresh owner-private mode-0700 Gitless stage.
Whole-worktree dispatch requires --approve-whole-worktree LAUNCH_APPROVAL_SHA256. Every disposable-worktree entry is provider-readable and may reach Google/Gemini; --add-dir, prompt denylists and gate path policies do not narrow that read boundary.
Neither workflow.sh run nor the advanced agy-worker.sh initial dispatch has an implicit transmission mode.
The whole-worktree digest binds content, kinds, full file mode bits, symlink target hashes, the
readable manifest, provider isolation and native grant profile. The scoped digest
binds canonical read/write policy, readable path/kind manifest, selected bytes and
executable bits, isolation and grant profile; scoped mode rejects symlinks and does
not bind full POSIX permissions. The controller rechecks the approved boundary
before provider start. The human approves one launch_approval_sha256 over canonical
launch_authority: those content inputs, destination and Git base, exact normalized
task and constructed prompt, fixed transport templates, workflow/edit mode, model/effort,
cycles and time budgets, scoped repair, self-verification manifest digest, provider-env
names, slash policy, additional directories and provider schema digest. Preview the
exact task and all launch options; reuse them unchanged for the approved run. Only
trailing LF bytes are removed from UTF-8 task input; spaces and CRLF are preserved.
Environment values and private verification commands are never serialized into the
approval payload. Use the private prelaunch review checklist
in Project lifecycle and verification, including any optional self-verification
commands, IDs and limits; keep that manifest out of the provider preview and prompt.
Retired dispatch and workflow job formats are rejected; finish or discard them with their creating release, without migration.
Default --provider-isolation session uses the existing AGY session. AGY has normal user filesystem/network authority; staging and reconciliation are not host isolation.
Explicit --provider-isolation native requires supported macOS scoped containment; it never falls back to session mode. Preserve the recorded isolation mode and grant profile across repairs.
Provider-scope approval grants neither provider execution, Git action, driver acceptance, nor publication.
Exclude secrets, denied paths and unrelated private content from every approved entry; telling the worker not to read an approved entry is not a control.
Keep raw logs and controller state outside the worktree and prompts. Each launch requires capability preflight and immediate executable-binding recheck. Model and effort stay caller-owned. Child environment opt-ins require approval per variable name. Installation grants no provider or Git authority.
Read Security and compatibility before a first live dispatch or changing execution exposure. It owns native network/Keychain limits, verifier environments and no-follow boundaries. Read the required launch notices before initial, resume, continue or restart attempts; notices do not repeat approvals.
| Intent | Workflow | Cycle budget | Driver action |
|---|---|---|---|
| Explore, understand, review or plan | explore | default 2, allowed 1..2 | Spot-check findings; state coverage limits. |
| Bounded feature, refactor or tests | task | default 2, allowed 1..2 | Review the diff; run relevant checks. |
| Project build or broad audit-and-fix | project | default 5, allowed 1..5 | Review changes; run build, tests and lint. |
Use workflow.sh run --preview, approved run, read-only status, and
verify-finalize. The facade does not choose a model, assurance, repair or external
action. Project lifecycle and verification
owns copyable commands, Verification v2 candidate bindings and recovery.
Quick path: save the reviewed scope file outside the target repository with mode
0600, then run the facade with a unique job ID:
TARGET=/absolute/path/to/approved-repository
JOB_ID=job-12345
SCOPE=/absolute/private/provider-scope.json
TASK='the exact approved bounded task'
"$PIPELINE/workflow.sh" run --preview --repo "$TARGET" --job-id "$JOB_ID" --provider-scope "$SCOPE" --task "$TASK"This creates the disposable worktree and private state. Review launch_approval_sha256,
then repeat the same command without --preview, adding
--approve-transmission-sha "$LAUNCH_SHA". A minimal owner-private
scope file, with entries sorted by path, is:
{"schema_version":1,"kind":"agy-worker-provider-scope","read":[{"path":"src/parser.py","kind":"file"},{"path":"tests","kind":"tree"}],"write":[{"path":"tests","kind":"tree"}]}Use paths that exist in the reviewed worktree and keep the scope file outside it
with mode 0600. The facade derives an owner-private state path for later
status and verify-finalize; see the linked guide for the complete sequence.
Run driver-selected build/test commands and Python imports in an isolated
verification copy with PYTHONDONTWRITEBYTECODE=1. Inspect the bound candidate's
actual diff and gate binding directly. Never manually edit, delete, or chmod the
bound candidate; send needed
repairs to the same worker conversation. Never execute an envelope's
commands_run or tests_run; bind only sanitized driver findings to the candidate.
Gate and verify-finalize --verify-argv verifiers run in the bound candidate: choose
only commands known to be read-only there. Snapshot rejection detects changes to bound candidate state
after they happen; it does not isolate the candidate. Verifiers run untrusted
candidate code with the user's authority; the gate does not detect changes outside
the candidate, including Git hooks and configuration. Feed separate copy test results
into Verification v2.
Repair observable failures in the same conversation within budget; never silently
fall back to direct-driver work after provider failure or exhausted budget.
Use initial --allow-scoped-repair for approved multi-turn scoped work. Without that
grant, a changed scoped candidate is result/finalize-only. Preserve useful work;
restart requires an explicit user decision.
Self-verification is optional advisory feedback, not acceptance. An unknown first
check is not a hard stop. Reuse checks only for unchanged candidate bytes and relevant
environment; the driver independently decides the final assurance.
For trust-boundary changes, use the short design note and independent review in
Material planning governance.
Explicit delegation-first requires running the delegation-policy.sh evaluator before substantive repository work.
Controller records are local: the runtime cannot infer prior work or approval and
must never silently authorize direct-driver fallback after missing approval, a hard
stop, preflight/provider failure or exhausted budget.
Claude Code: in non-interactive claude -p or SDK runs, dispatch in the foreground
(up to the host's ten-minute ceiling) or keep the turn alive until it finishes;
never end the turn while a job runs. In interactive sessions, a long dispatch may
use Bash run_in_background: true while the main session remains active. Do not
duplicate a job or treat a Bash timeout as provider failure.
Bash permission approval is separate from transmission approval. Read
Claude Code host operation.
Stop for missing exact approval; secrets or denied/unrelated private content in
approved inputs; writes escaping the worktree, entering .git or traversing symlink
boundaries; or unapproved Git, publication, installation, account or external actions.
Never use dangerous permission/approval-bypass flags or disable the host sandbox for AGY.
Do not modify user configuration as a code change. Never weaken the evidence gate.
Before changing AGY-facing flags or claims, run "$PIPELINE/ground-truth.sh" and
inspect current help. Its default version/help phase is local; --account is separate.
Read result.structured_output, not echoed schema or empty display text.
Deliver verified, partially_verified, rejected or blocked with the checks
actually run and remaining gaps. Offline checks do not prove live provider behavior,
completeness, release state or general correctness. Use
Troubleshooting for the failing boundary.
When status offers finalization for a bound candidate, verify-finalize records the
driver's result without a Git change and is the facade's required closure step.
© aiskillstore, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 40 other files (scripts, references) in pending/cagdasyurekli/agy-worker of aiskillstore/marketplace.
Open the folder on GitHubat commit 755bc35
Agy Worker next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Agy Worker this skillaiskillstore/marketplace | 430 | — | ~2.7k | Automated safety check: Pass | MIT | |
| Agy Delegatesickn33/agentic-awesome-skills | 47k | 1 repos | ~2.2k | Automated safety check: Pass | MIT | |
| Agy DelegateamElnagdy/delegate-skills | 2.3k | — | ~2.5k | Automated safety check: Pass | MIT | |
| Agy Autosickn33/agentic-awesome-skills | 47k | 1 repos | ~1.9k | Automated safety check: Warn | MIT | |
| Delegate Workpaperclipai/paperclip | 99k | — | ~372 | Automated safety check: Pass | MIT | |
| Worker Visualizernexu-io/open-design | 100k | — | ~998 | Automated safety check: Pass | Apache-2.0 |
sickn33/agentic-awesome-skills
Delegate coding tasks to the Google Antigravity CLI (agy) only when the user explicitly requests it, while the orchestrator retains review and landing responsibility.
amElnagdy/delegate-skills
Delegate a coding task to the Google Antigravity CLI (agy) as a background implementer, then review its diff and land it yourself.
sickn33/agentic-awesome-skills
Configure agy-auto PreToolUse security gate to run Antigravity CLI (agy) unattended with layered policy controls instead of --dangerously-skip-permissions.
paperclipai/paperclip
Delegate user-requested work to an existing Paperclip agent, with a durable task reference and clear execution expectations.
nexu-io/open-design
A real-time data/particle/simulation visualizer whose heavy compute runs in a Web Worker (off the main thread), optionally sharing memory with the UI via SharedArrayBuffer, and renders to a canvas…
ruvnet/ruflo
Agent skill for worker-specialist - invoke with $agent-worker-specialist
aiskillstore/marketplace
Analyze codebase with tokei (fast line counts by language) and difft (semantic AST-aware diffs).
aiskillstore/marketplace
Process JSON with jq and YAML/TOML with yq. An agent skill from aiskillstore/marketplace.
aiskillstore/marketplace
Scans for project documentation files (AGENTS.md, CLAUDE.md, GEMINI.md, COPILOT.md, CURSOR.md, WARP.md, and 15+ other formats) and synthesizes guidance.
aiskillstore/marketplace
Modern file and content search using fd, ripgrep (rg), and fzf.
aiskillstore/marketplace
Modern find-and-replace using sd (simpler than sed) and batch replacement patterns.
aiskillstore/marketplace
Detects stale project plans and suggests session commands. An agent skill from aiskillstore/marketplace.
A skill your agent uses when Codex or Claude Code should delegate repository exploration or implementation to Google Antigravity CLI (agy), then review, verify, repair, and deliver the result. Agy Worker is an agent skill from aiskillstore/marketplace. Use when Codex or Claude Code should delegate repository exploration or implementation to Google Antigravity CLI (agy), then review, verify, repair, and deliver the result.
Agy Worker fits situations like: Claude Code should delegate repository exploration; implementation to Google Antigravity CLI (agy); deliver the result.
Run `npx skills add aiskillstore/marketplace --skill agy-worker -a claude-code`. Or copy the skill folder (pending/cagdasyurekli/agy-worker in aiskillstore/marketplace) into .claude/skills/agy-worker in your project. Claude Code loads it when a task matches its description.
Run `npx skills add aiskillstore/marketplace --skill agy-worker -a codex`. Or copy the skill folder (pending/cagdasyurekli/agy-worker in aiskillstore/marketplace) into .agents/skills/agy-worker in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add aiskillstore/marketplace --skill agy-worker -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/agy-worker, .gemini/skills/agy-worker, .github/skills/agy-worker and .opencode/skills/agy-worker in your project.
Going by SKILL.md and its folder, Agy Worker needs a shell for the scripts in its folder and the command-line tools its instructions call (bash and claude). Our summary lists: Python 3; A Bash shell. Compatibility (from SKILL.md): OpenAI Codex CLI and Claude Code. Requires Bash, Python 3, git, and agy with provider network access..
SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.
Agy Worker is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.
About 2.7k tokens (SKILL.md is roughly 11k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 11k tokens, read only when the agent opens those files.
Skills that share tags, products or a category with Agy Worker: Agy Delegate (sickn33/agentic-awesome-skills, 47k stars), Agy Delegate (amElnagdy/delegate-skills, 2.3k stars), Agy Auto (sickn33/agentic-awesome-skills, 47k stars) and Delegate Work (paperclipai/paperclip, 99k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
aiskillstore (a GitHub organization) maintains it in aiskillstore/marketplace, which has 430 GitHub stars. The repository holds 1,044 skills in this directory. The repository was last updated on October 9, 2026.
Source: aiskillstore/marketplace on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.